Heap-based Buffer Overflow in RTI Connext Professional by RTI
CVE-2025-1252

6.9MEDIUM

Key Information:

Vendor

Rti

Vendor
CVE Published:
8 May 2025

What is CVE-2025-1252?

The Heap-based Buffer Overflow vulnerability in RTI Connext Professional affects multiple versions, allowing attackers to manipulate overflow variables and tags. This could lead to unintentional system behavior, potentially compromising the integrity of the application. It is crucial for users of the affected versions to update their software to mitigate any risks associated with this vulnerability.

Affected Version(s)

Connext Professional 7.4.0 < 7.5.0

Connext Professional 7.0.0 < 7.3.0.7

Connext Professional 4.4 < 6.1.2.23

References

CVSS V4

Score:
6.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.